Recent Scans
Targets
All
Critical
High
Medium
Low
Info
All
High
Medium
Low
Info
| # | Method | URL | Status | Length | Time | Params | Vuln |
|---|
0
Subdomains
0
Paths Found
0
Technologies
0
Sensitive Files
Subdomain Enumeration9 Methods Available
Discover subdomains using DNS bruteforce, Certificate Transparency, Zone Transfer, and more.
No subdomains discovered yet. Start a recon scan.
0
Verified
0
Pending
0
PoCs Generated
9
Exploit Modules
SQL Injection
Union, Boolean, Time-based, Error-based techniques
Critical ImpactXSS
Reflected, Stored, DOM-based exploitation
High ImpactCommand Injection
OS command execution on Unix/Windows
Critical ImpactPath Traversal
LFI, File read, Config disclosure
High ImpactSSRF
Cloud metadata, Internal service access
Critical ImpactXXE
File disclosure, OOB exfiltration
High ImpactSSTI
Multi-engine RCE (Jinja2, Twig, etc.)
Critical ImpactAuth Bypass
JWT manipulation, Default credentials
Critical ImpactIDOR
Object reference enumeration
High Impact0
Critical Priority
0
High Priority
0
Attack Paths
0
Pivot Points
Vulnerability PrioritizationMulti-Factor Scoring
Vulnerabilities ranked by exploitability, impact, chaining potential, and asset criticality.
No findings to prioritize. Run a scan first.
Profile
Username: -
Role: -
Change Password
API Keys
Real-time Updates
WebSocket Status: Disconnected
Chat
Loading...
🤖
Hello! I'm your AI security assistant. I can help you with:
- Analyzing vulnerabilities
- Understanding scan results
- Remediation guidance
- Security best practices
- Exploitation techniques (for authorized testing)
Scan Actions
Quick Actions
Example Questions
💡 "How do I exploit SQL injection to extract data?"
💡 "What is the impact of XSS in this context?"
💡 "How can I bypass the WAF for this target?"
💡 "Explain IDOR and how to test for it"
💡 "What are common KYC bypass techniques?"
0
Active
0
Paused
0
Total
-
Next Run
Scheduled Scans
No schedules configured
Schedule Calendar
Sun
Mon
Tue
Wed
Thu
Fri
Sat
Recent Scheduled Runs
No recent runs
7
Built-in
0
Custom
77
Analyzers
Quick Scan
Fast assessment with essential checks. 2 phases, 50 URLs max.
~15 min22 analyzers
Standard Scan
Balanced coverage with all common vulnerability checks.
~60 min45 analyzers
Thorough Scan
Comprehensive testing with all analyzers and deep crawling.
~4 hrs77 analyzers
Stealth Scan
Low-noise scanning designed to evade WAF detection.
~2 hrsRate Limited
Aggressive Scan
Maximum coverage with high request rate and fuzzing.
~3 hrsHigh Traffic
API-Focused
REST/GraphQL/WebSocket specific testing and fuzzing.
~90 minAPI
Auth-Focused
Authentication, session, and authorization testing.
~60 minAuth
0
Critical
0
High
0
Medium
0
Scans
0
Targets
-
Avg Time
Vulnerability Trends
Vulnerabilities by Type
Scan Activity
Top Vulnerable Targets
Remediation Status
0
Open
0
In Progress
0
Resolved
CVSS Score Distribution